Ransomware victim disclosure
← All victimsGenesis Engineering Group
Claimed by Dark Project · listed 3 days ago
Status timeline
- ListedAug 5, 2026
- Data leakeddate unknown
At a glance
- Group
- Dark Project
- Status
- Data leaked
- Country
- United States
- Sector
- Manufacturing
- Listed on leak site
- Aug 5, 2026
About the victim
AI dossier — public-source company profileGenesis Engineering Group, LLC is a full-service engineering firm headquartered in Nashville, Tennessee, providing structural, mechanical, electrical, plumbing, and fire protection design services across multiple sectors including multi-family residential, hospitality, education, healthcare, industrial, and commercial office projects. The firm operates across multiple US states with a portfolio of substantial construction projects.
- Industry
- Engineering & Architectural Services
- Address
- Nashville, Tennessee (headquarters inferred from primary office location)
- Employees
- 51-200
Attack summary
Severity: critical — Confirmed exfiltration of substantial data volume (75GB, 50,000 files) including PII (employee documents), customer data, and financial/banking records. Large-scale exposure of regulated personal information with proof published.Dark Project claims to have exfiltrated over 75 GB of data from Genesis Engineering Group, including personal employee documents, customer data, and bank/financial information. The group published proof and claims approximately 50,000 files were stolen.
Data the group says was taken
AI dossier — extracted from the leak post- Employee personal documents
- Customer data
- Bank and financial information
- Company records
The group's post references roughly 50000 proof files.
What the group claims
Due to cyberattack on Genesis more than 75Gb of company personal data was stolen. Leakage contains big amount of sensitive data such as personal emlpoyes documents, company's customers data, bank and financial information documents. About 50 000 files are not secured by Genesis for now. Download here: http://x2jz63qemhcbhyskzt3pie757oicdkctk2rh5dpykmxsw2yoayeqs5yd.onion/
Sources
Source
Indexed 3 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

